Supply-chain threat intelligence
Risk score
92
Indexed incident for zhopaorlaaato (pypi).
Package is runs an Infostealer targeting telegram and Discord credentials. Depending on version, the infostealer is either downloaded from an URL or embedded in the package
Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.
Campaign: 2025-08-dsidelib
Reasons (based on the campaign):
infostealer
Downloads and executes a remote malicious script.
exfiltration-browser-data
target:telegram
Indicators
Timeline